K

SRE • DevSecOps

Always keen to share knowledge and build things together.

Koresha Logo

Koresha

SRE · DevSecOps

France

About Me

I'm a SRE / DevSecOps engineer focused on multi-cluster Kubernetes, CI/CD, Infrastructure as Code, SSO implementation, security hardening and comprehensive observability. I enjoy automating complex workflows and building resilient, scalable systems.
I'm passionate about open source and an active member of the OpenInfra Community.

Infrastructure

Kubernetes, OpenStack, Cloud platforms

Security

DevSecOps, SIEM, SSO, Compliance

Monitoring

Prometheus, Grafana, Observability

Skills & Technologies

Professional Experience

UN

Site Reliability Engineer

unyc

Cloud & Connectivity • 200 (Inherent Group: 1,300) employees

Sep 2025 — Present

Connectivity, cloud and cyber operator specializing in indirect sales with an ecosystem of 1,300 partners and an automated services platform serving French businesses and communities.

Key Achievements

  • Architect and manage multi-tenant OpenStack private cloud with 200+ VMs and Ceph storage.
  • Infrastructure as Code with OpenTofu: complete automation of compute, network and storage resources.
  • Deploy and maintain Kubernetes clusters (3 environments: dev, staging, prod) with high availability.
  • Implement GitOps CI/CD pipeline with Helm, Ansible and ArgoCD for 15+ applications.
  • Integrate External-DNS with Azure for automated DNS records management.
  • Advanced monitoring with Prometheus, Grafana and AlertManager: 99.9% uptime maintained.
  • Manage S3-compatible object storage (MinIO) with backup and cross-region replication.

Technologies & Tools

OpenStack Kubernetes OpenTofu Helm Ansible ArgoCD Azure DNS Prometheus Grafana S3 MinIO

Featured Projects

Multi-cluster Kubernetes Platform

GitOps with ArgoCD, Helm/Ansible pipelines, observability stack, secrets & SSO hardening.

K8sArgoCDHelmAnsibleProm/GrafanaKeycloak

OpenStack private cloud

Compute/network/storage automation, External-DNS (Azure), S3 compatible object store.

OpenStackOpenTofuS3External-DNS

DevSecOps Pipeline

Automated security scanning, vulnerability assessment, compliance reporting with ELK SIEM integration.

JenkinsELKSecurityComplianceSIEM

Infrastructure as Code

Complete infrastructure automation with Terraform/OpenTofu, Ansible configuration management and GitOps workflows.

TerraformOpenTofuAnsibleGitOpsIaC

Latest Articles

8 min
Featured

GitOps with ArgoCD: Complete Guide for Beginners

Learn how to implement GitOps in your Kubernetes projects with ArgoCD. From installation to production deployment.

GitOpsArgoCDKubernetesCI/CD
12 min
Featured

Securing Kubernetes Clusters in Production

Security best practices for your K8s clusters: RBAC, Network Policies, Pod Security Standards and more.

KubernetesSecurityDevSecOpsRBAC
6 min

Infrastructure as Code: OpenTofu vs Terraform

Detailed comparison between OpenTofu and Terraform: features, performance and migration strategies.

IaCOpenTofuTerraformDevOps
10 min

Advanced Monitoring with Prometheus and Grafana

Setting up a complete monitoring stack for your applications and infrastructure.

MonitoringPrometheusGrafanaObservability

Let's Work Together

I'm always interested in discussing new opportunities, sharing knowledge, or collaborating on interesting projects. Feel free to reach out!

Quick Info

France
Available for freelance & consulting
Response time: Usually within 24h